Elektroda.pl
Elektroda.pl
X
CControls
Proszę, dodaj wyjątek www.elektroda.pl do Adblock.
Dzięki temu, że oglądasz reklamy, wspierasz portal i użytkowników.

Wirus UNS Unlocker - logi FRST

zuchwalyroman 22 Mar 2016 16:20 468 1
  • CControls
  • #2 22 Mar 2016 16:33
    Kolobos
    Spec od komputerów

    Odinstaluj:
    Spybot - Search & Destroy
    SpyHunter 4

    Fixlist.txt dla FRST:
    Task: {00163028-E31C-4F05-95E0-E3DA012E061A} - System32\Tasks\UpdateAdmin => C:\Users\Sławomir\AppData\Local\UpdateAdmin\UpdateAdmin.exe <==== UWAGA
    Task: {05BF0BCD-938F-487B-A808-8B8C9AC4F5D1} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-7 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-7.exe <==== UWAGA
    Task: {0AA5BDE9-8FD9-4B37-B270-B4B995800524} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-7 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-7.exe <==== UWAGA
    Task: {0CF0320D-4A4A-4902-8722-8127DBCFD97B} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-11.exe <==== UWAGA
    Task: {10228E15-1A92-4544-8FA3-F4E4385190D5} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-codedownloader.exe <==== UWAGA
    Task: {13EA9D38-BC8A-40E0-B5E9-66B803CB3B56} - System32\Tasks\{46CFB7D4-8E2B-4072-B436-47898EEDEC8F} => pcalua.exe -a C:\Users\Sławomir\AppData\Roaming\uTorrent\uTorrent.exe -c /UNINSTALL
    Task: {1420D1DC-EC43-4418-98F1-8ED32ABA16C5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {176346EF-DC51-4BD1-8D2D-B66CC0A6936C} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    Task: {20B699D8-554D-4409-B42C-9D5ECE14BE1D} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-2 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-2.exe <==== UWAGA
    Task: {2DCE4133-6CC2-4B1D-87CE-0D89A179C03B} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-11 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-11.exe <==== UWAGA
    Task: {2E74CCEA-FB6A-4552-A44B-F26783177B4F} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-4 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-4.exe <==== UWAGA
    Task: {31FECABD-BEA0-419B-9F60-956EDBE4D93B} - System32\Tasks\{F3B2FB6A-0624-E75D-5149-133DE1950477} => C:\WINDOWS\system32\regsvr32.exe [2014-11-21] (Microsoft Corporation)
    Task: {3A38B79F-FF62-42E9-A5B3-1931020E94A4} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    Task: {3BCA7A21-5ECE-43E6-9BDC-1B8579EA23B9} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-2 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-2.exe <==== UWAGA
    Task: {578743DF-C7EF-4BE4-A106-CC295B654D1F} - System32\Tasks\{6C3D99AD-DF09-46BC-AE0D-CC4534C18E05} => pcalua.exe -a C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_182_Plugin.exe -c -maintain plugin




    Task: {6B8DFEA0-85EC-4CF8-AB71-57E4174C86D7} - System32\Tasks\25802be4-3110-4bef-bb57-b5054e969e76 => C:\Program Files (x86)\TheHDvid-Codec V10\25802be4-3110-4bef-bb57-b5054e969e76.exe <==== UWAGA
    Task: {74ADDD21-484E-4170-AFB4-7328B0706727} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-7.exe <==== UWAGA
    Task: {74E27D8D-8D5D-470F-B041-4222C1DE1644} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-6 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-6.exe <==== UWAGA
    Task: {7DBB1C78-EE11-4502-99E0-5CD37BE208A4} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    Task: {8390E881-6910-4E88-89D9-68D1E60FEA6E} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-2.exe <==== UWAGA
    Task: {8A3DD482-FF37-4227-B789-EFC68F6A1A7E} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-3.exe <==== UWAGA
    Task: {8BB0B48A-79DB-4D79-A372-0A4CAB804B1E} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-1 => C:\Program Files (x86)\TheHDvid-Codec V10\TheHDvid-Codec V10-codedownloader.exe <==== UWAGA
    Task: {92F4D273-1D9D-42C3-B1FE-1FCBDAED5693} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-6.exe <==== UWAGA
    Task: {95C902FD-E64D-4850-9084-E8D8AE765EB9} - System32\Tasks\DNSLOCKINGTON => dnslockington.exe <==== UWAGA
    Task: {9699BF73-ED53-48EC-B3D9-331EA40957E7} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2016-03-22] (Enigma Software Group USA, LLC.)
    Task: {97CEE96C-64DA-423B-ADFE-E531BE228A6D} - System32\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e => C:\Program Files (x86)\TotalPlus01-3.1V18.09\944feefa-d33a-40b7-8bcb-44de08bf820e.exe <==== UWAGA
    Task: {9CEACBD5-98B6-40C4-BBF8-0CC90438F0BD} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
    Task: {AED5249C-562F-49B2-B769-ABE0B030CD90} - System32\Tasks\Installer_ytd => C:\Users\Sławomir\AppData\Local\Installer\Installytd_9234\DC1AB2RN4.exe <==== UWAGA
    Task: {B17A0614-03C7-4C66-80CB-09E364CF2886} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe <==== UWAGA
    Task: {B376AC3C-493D-4FCF-913D-56D0B2E589EF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
    Task: {B8E91F07-225B-45E7-AB3C-3AFFA58028C0} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-1 => C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe <==== UWAGA
    Task: {CB69F80A-687F-4BBB-B167-F24072401011} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-3 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-3.exe <==== UWAGA
    Task: {D6384688-7FD4-4BC0-8F94-0FC52E459180} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-11 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-11.exe <==== UWAGA
    Task: {D66CC0BE-CD67-408C-8837-EF95F2C55A9E} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5.exe <==== UWAGA
    Task: {D931E2A7-1271-4B09-A21B-93F08C23A3BC} - System32\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4 => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-4.exe <==== UWAGA
    Task: {E4DFF30C-5B72-493A-A732-838C96AD0C88} - System32\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-6 => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-6.exe <==== UWAGA
    Task: {E6B0F48D-41E4-405D-8C49-2544948552B4} - System32\Tasks\booking.com Sat2 => C:\Program Files (x86)\Booking.com\Booking.com.exe
    Task: {E980C863-3B4D-48AD-9594-FEB44FE02D47} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-5 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-5.exe <==== UWAGA
    Task: {F651F2A4-92AC-43CF-8572-F25238D612D0} - System32\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-4 => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-4.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-1.job => C:\Program Files (x86)\Internet Speed Checker\Internet Speed Checker-codedownloader.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-11.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-11.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-2.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-2.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-4.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-4.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-5.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-5_user.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-6.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-6.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-7.job => C:\Program Files (x86)\Internet Speed Checker\2047bae6-eea9-4b6e-8639-0e49c6422d76-7.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\25802be4-3110-4bef-bb57-b5054e969e76.job => C:\Program Files (x86)\TheHDvid-Codec V10\25802be4-3110-4bef-bb57-b5054e969e76.exeȆ/agentregpath='TheHDvid-Codec V10' /appid=63315 /srcid='001824' /subid='0' /zdata='0' /bic=F49607F9A9F848F9A7A082EB87E90DA6IE /verifier=5e25c50d3b0901842f6a58f8b1d52199 /installerversion=1_35_09_16 /installationtime=1411066766 /statsdomain=hxxp:/stats.newclientonlinestorage.com /errorsdomain=hxxp:/errors.newclientonlinestorage.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,184-0 /monetizationdomain=hxxp:/logs.newclientonlinestorage.com <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-1.job => C:\Program Files (x86)\TheHDvid-Codec V10\TheHDvid-Codec V10-codedownloader.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-11.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-11.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-2.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-2.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-3.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-3.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-4.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-4.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5_user.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-6.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-6.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-7.job => C:\Program Files (x86)\TheHDvid-Codec V10\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-7.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\TotalPlus01-3.1V18.09-codedownloader.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-11.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-2.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-3.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-4.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5_user.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-5.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-6.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\61751c0f-7a12-4483-845a-4b41e89d5251-7.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job => C:\Program Files (x86)\TotalPlus01-3.1V18.09\944feefa-d33a-40b7-8bcb-44de08bf820e.exeȪ/agentregpath='TotalPlus01-3.1V18.09' /appid=63285 /srcid='002173' /subid='0' /zdata='0' /bic=F49607F9A9F848F9A7A082EB87E90DA6IE /verifier=5e25c50d3b0901842f6a58f8b1d52199 /installerversion=1_35_09_16 /installationtime=1411066977 /statsdomain=hxxp:/stats.newclientonlinestorage.com /errorsdomain=hxxp:/errors.newclientonlinestorage.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=hxxp:/logs.newclientonlinestorage.com <==== UWAGA
    Task: C:\WINDOWS\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    Task: C:\WINDOWS\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== UWAGA
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\Software\Classes\.exe: exefile => <===== UWAGA
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\Software\Classes\exefile: <===== UWAGA
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
    (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
    HKLM-x32\...\Run: [fst_pl_203] => [X]
    HKLM-x32\...\Run: [] => [X]
    HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
    Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\...\Run: [Spybot-S&D Cleaning] => C:\Users\Sławomir\Downloads\SpybotPortable\App\Spybot\SDCleaner.exe [4594552 2015-06-16] (Safer-Networking Ltd.)
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\...\MountPoints2: {177c5a75-0bcb-11e5-bee5-24fd52f9e1bd} - "F:\HTC_Sync_Manager_PC.exe"
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\...\MountPoints2: {49647425-3b3f-11e5-beee-24fd52f9e1bd} - "G:\HTC_Sync_Manager_PC.exe"
    AppInit_DLLs: C:\ProgramData\Quotenamron\UnoRon.dll => Brak pliku
    AppInit_DLLs-x32: C:\ProgramData\Quotenamron\Tran-Lab.dll => Brak pliku
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku
    Tcpip\Parameters: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{4D67D230-F0C4-4E6C-B893-5B1D2C02420F}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{4D67D230-F0C4-4E6C-B893-5B1D2C02420F}: [DhcpNameServer] 82.163.143.171
    Tcpip\..\Interfaces\{5AB49FC8-CEAD-4D57-848F-A0589CD7842C}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{5AB49FC8-CEAD-4D57-848F-A0589CD7842C}: [DhcpNameServer] 82.163.143.171
    Tcpip\..\Interfaces\{D8F4A4C3-9B47-48F4-AE7F-761BFB6C7E24}: [NameServer] 82.163.143.171 82.163.142.173
    Tcpip\..\Interfaces\{D8F4A4C3-9B47-48F4-AE7F-761BFB6C7E24}: [DhcpNameServer] 82.163.143.171
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
    HKU\S-1-5-21-2750079345-1259238043-1959512004-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.key-find.com/web/?type=ds&ts=1...ST500LT012-9WS142_W0VC917JXXXXW0VC917J&q={searchTerms}
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.key-find.com/web/?type=ds&ts=1...ST500LT012-9WS142_W0VC917JXXXXW0VC917J&q={searchTerms}
    URLSearchHook: [S-1-5-21-2750079345-1259238043-1959512004-1001] UWAGA => Brak domyślnego URLSearchHook
    SearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://www.bing.com/search?q={searchTerms}
    Toolbar: HKLM - Brak nazwy - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Brak pliku
    FF user.js: detected! => C:\Users\Sławomir\AppData\Roaming\Mozilla\Firefox\Profiles\tn164592.default-1458290905882\user.js [2016-03-18]
    CHR HKLM-x32\...\Chrome\Extension: [dkmjljdbbgogihjcapfhgkonfmccbffp] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [jidkebcigjgheaahopdnlfaohgnocfai] - hxxps://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [oejkcgajlodefenbbjdnaiahmbnnoole] - C:\Program Files (x86)\Lavasoft\AdAware SecureSearch Toolbar\chrome-newtab-search.crx <nie znaleziono>
    OPR Extension: (Internet Speed Checker) - C:\Users\Sławomir\AppData\Roaming\Opera Software\Opera Stable\Extensions\bbglkiiiofelplniblholffbhhjmdhhi [2014-09-19]
    OPR Extension: (TotalPlus01-3.1V18.09) - C:\Users\Sławomir\AppData\Roaming\Opera Software\Opera Stable\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb [2014-09-18]
    OPR Extension: (TheHDvid-Codec V10) - C:\Users\Sławomir\AppData\Roaming\Opera Software\Opera Stable\Extensions\lkdanligledioimheahflbepecbceang [2014-09-18]
    R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
    R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
    R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
    S2 SpyHunter 4 Service; C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe [1042304 2016-03-22] (Enigma Software Group USA, LLC.)
    R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [15920 2016-03-22] (Enigma Software Group USA, LLC.)
    S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2016-03-22] ()
    2016-03-22 11:37 - 2016-03-22 11:37 - 00003334 _____ C:\WINDOWS\System32\Tasks\SpyHunter4Startup
    2016-03-22 11:37 - 2016-03-22 11:37 - 00001114 _____ C:\Users\Sławomir\Desktop\SpyHunter.lnk
    2016-03-22 11:37 - 2016-03-22 11:37 - 00000000 ____D C:\Users\Sławomir\AppData\Roaming\Enigma Software Group
    2016-03-22 11:37 - 2016-03-22 11:37 - 00000000 _____ C:\autoexec.bat
    2016-03-22 11:36 - 2016-03-22 11:37 - 00000000 ____D C:\sh4ldr
    2016-03-22 11:36 - 2016-03-22 11:36 - 00022704 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
    2016-03-22 11:36 - 2016-03-22 11:36 - 00000000 ____D C:\Program Files\Enigma Software Group
    2016-03-22 11:35 - 2016-03-22 11:35 - 03286400 _____ (Enigma Software Group USA, LLC.) C:\Users\Sławomir\Downloads\SpyHunter-Installer.exe
    2016-03-22 11:18 - 2016-03-22 11:18 - 00000000 ____D C:\Users\Sławomir\AppData\Local\Apps\2.0
    2016-03-21 22:40 - 2016-03-21 22:40 - 00000000 ____D C:\Program Files\Reimage
    2016-03-21 21:43 - 2016-03-21 21:43 - 00000000 ____D C:\Program Files\Common Files\AV
    2016-03-21 21:43 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe
    2016-03-21 21:36 - 2016-03-21 22:23 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
    2016-03-21 21:36 - 2016-03-21 21:43 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
    2016-03-21 21:36 - 2016-03-21 21:36 - 00001418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
    2016-03-21 21:36 - 2016-03-21 21:36 - 00001406 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
    2016-03-21 21:36 - 2016-03-21 21:36 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
    2016-03-21 21:36 - 2016-03-21 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
    2016-03-21 21:36 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean64.exe
    2016-03-21 17:44 - 2016-03-21 17:45 - 00000000 ____D C:\Users\Sławomir\Downloads\SpybotPortable
    2016-03-21 17:40 - 2016-03-21 17:44 - 119710544 _____ (PortableApps.com) C:\Users\Sławomir\Downloads\SpybotPortable_2.5.paf.exe
    2016-03-21 17:38 - 2016-03-21 17:38 - 01026152 _____ (Nifalise ) C:\Users\Sławomir\Downloads\Spybot-Search-Destroy-12546-dp.exe
    2016-03-21 12:36 - 2016-03-21 12:36 - 00000000 ____D C:\ProgramData\3d134951-10a1-1
    2016-03-21 12:36 - 2016-03-21 12:36 - 00000000 ____D C:\ProgramData\3d134951-0975-0
    2016-03-21 06:36 - 2016-03-21 06:36 - 00000000 ____D C:\ProgramData\3d134951-7337-1
    2016-03-21 06:36 - 2016-03-21 06:36 - 00000000 ____D C:\ProgramData\3d134951-0685-0
    2016-03-21 00:36 - 2016-03-21 00:36 - 00000000 ____D C:\ProgramData\3d134951-7905-1
    2016-03-21 00:36 - 2016-03-21 00:36 - 00000000 ____D C:\ProgramData\3d134951-4471-0
    2016-03-20 18:36 - 2016-03-20 18:36 - 00000000 ____D C:\ProgramData\3d134951-5e03-0
    2016-03-20 18:36 - 2016-03-20 18:36 - 00000000 ____D C:\ProgramData\3d134951-09d5-1
    2016-03-20 15:21 - 2016-03-20 15:21 - 00003172 _____ C:\WINDOWS\System32\Tasks\{6C3D99AD-DF09-46BC-AE0D-CC4534C18E05}
    2016-03-20 12:36 - 2016-03-20 12:36 - 00000000 ____D C:\ProgramData\3d134951-5d07-1
    2016-03-20 12:36 - 2016-03-20 12:36 - 00000000 ____D C:\ProgramData\3d134951-2505-0
    2016-03-20 06:36 - 2016-03-20 06:36 - 00000000 ____D C:\ProgramData\3d134951-4551-0
    2016-03-20 06:36 - 2016-03-20 06:36 - 00000000 ____D C:\ProgramData\3d134951-3ea5-1
    2016-03-18 17:49 - 2016-03-21 22:48 - 00000111 _____ C:\WINDOWS\Reimage.ini
    2016-03-18 14:22 - 2016-03-18 14:22 - 00003436 _____ C:\WINDOWS\System32\Tasks\booking.com Sat2
    2016-03-18 14:22 - 2016-03-18 14:22 - 00000000 ___HD C:\Users\Sławomir\AppData\Roaming\Booking_helper
    2016-03-18 14:16 - 2016-03-18 14:16 - 00400445 _____ C:\Users\Sławomir\AppData\Roaming\Solotom.bin
    2016-03-18 14:15 - 2016-03-18 14:15 - 06493696 _____ C:\Users\Sławomir\AppData\Roaming\agent.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 01622056 _____ C:\Users\Sławomir\AppData\Roaming\Lexihold.tst
    2016-03-18 14:15 - 2016-03-18 14:15 - 00127488 _____ C:\Users\Sławomir\AppData\Roaming\Installer.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 00126464 _____ C:\Users\Sławomir\AppData\Roaming\noah.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 00065232 _____ C:\Users\Sławomir\AppData\Roaming\Config.xml
    2016-03-18 14:15 - 2016-03-18 14:15 - 00018432 _____ C:\Users\Sławomir\AppData\Roaming\Main.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 00014256 _____ C:\Users\Sławomir\AppData\Roaming\InstallationConfiguration.xml
    2016-03-18 14:15 - 2016-03-18 14:15 - 00005568 _____ C:\Users\Sławomir\AppData\Roaming\md.xml
    2016-03-17 15:19 - 2016-03-17 15:19 - 00000000 ____D C:\ProgramData\09d3df01-23d7-1
    2016-03-17 15:19 - 2016-03-17 15:19 - 00000000 ____D C:\ProgramData\09d3df01-11c7-0
    2016-03-15 00:36 - 2016-03-20 01:00 - 00000000 ____D C:\ProgramData\3d134951-0441-0
    2016-03-15 00:31 - 2016-03-20 01:00 - 00000000 ____D C:\ProgramData\3d134951-6525-0
    2016-03-15 00:31 - 2016-03-15 00:31 - 00022174 _____ C:\WINDOWS\System32\Tasks\DNSLOCKINGTON
    2016-03-15 00:31 - 2016-03-15 00:31 - 00003734 _____ C:\WINDOWS\System32\Tasks\{F3B2FB6A-0624-E75D-5149-133DE1950477}
    2016-03-15 00:31 - 2016-03-15 00:31 - 00000000 ____D C:\ProgramData\20c92ca9
    2016-03-15 00:31 - 2016-03-15 00:31 - 00000000 ____D C:\ProgramData\{182265dd-412c-0}
    2016-03-15 00:31 - 2016-03-15 00:31 - 00000000 ____D C:\ProgramData\{0d7e1db7-112c-1}
    2016-03-22 16:05 - 2014-09-19 11:05 - 00003492 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-6.job
    2016-03-22 16:03 - 2014-09-18 20:03 - 00003490 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-6.job
    2016-03-22 16:00 - 2014-09-18 20:00 - 00003484 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-6.job
    2016-03-22 15:04 - 2014-09-18 20:04 - 00002466 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-5.job
    2016-03-22 15:04 - 2014-09-18 20:04 - 00002130 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-2.job
    2016-03-22 15:04 - 2014-09-18 20:04 - 00001502 _____ C:\WINDOWS\Tasks\944feefa-d33a-40b7-8bcb-44de08bf820e.job
    2016-03-22 15:03 - 2014-09-18 20:03 - 00004516 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-11.job
    2016-03-22 15:03 - 2014-09-18 20:03 - 00003834 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-4.job
    2016-03-22 15:03 - 2014-09-18 20:03 - 00003834 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-3.job
    2016-03-22 15:03 - 2014-09-18 20:03 - 00003490 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-7.job
    2016-03-22 15:03 - 2014-09-18 20:03 - 00002806 _____ C:\WINDOWS\Tasks\61751c0f-7a12-4483-845a-4b41e89d5251-1.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00003828 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-4.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00003484 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-7.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00002794 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-1.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00002460 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-5.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00002124 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-2.job
    2016-03-22 15:00 - 2014-09-18 20:00 - 00001424 _____ C:\WINDOWS\Tasks\25802be4-3110-4bef-bb57-b5054e969e76.job
    2016-03-22 15:00 - 2014-09-18 19:59 - 00004510 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-11.job
    2016-03-22 14:59 - 2014-09-18 19:59 - 00003148 _____ C:\WINDOWS\Tasks\2cc0575e-a0b2-48fb-93ea-4479ed6891fc-3.job
    2016-03-22 12:06 - 2014-09-19 11:06 - 00003836 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-4.job
    2016-03-22 12:06 - 2014-09-19 11:06 - 00002810 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-1.job
    2016-03-22 12:06 - 2014-09-19 11:06 - 00002468 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-5.job
    2016-03-22 12:06 - 2014-09-19 11:06 - 00002132 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-2.job
    2016-03-22 12:05 - 2014-09-19 11:05 - 00004518 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-11.job
    2016-03-22 12:05 - 2014-09-19 11:05 - 00003492 _____ C:\WINDOWS\Tasks\2047bae6-eea9-4b6e-8639-0e49c6422d76-7.job
    2016-03-20 20:33 - 2015-02-07 20:10 - 00000000 ____D C:\Users\Sławomir\AppData\Local\Gameo
    2016-03-20 14:49 - 2014-09-18 20:03 - 00000000 ____D C:\Program Files (x86)\TotalPlus01-3.1V18.09
    2016-03-20 14:39 - 2014-09-18 19:59 - 00000000 ____D C:\Program Files (x86)\TheHDvid-Codec V10
    2016-03-18 18:21 - 2016-02-16 15:00 - 00003850 _____ C:\WINDOWS\System32\Tasks\UpdateAdmin
    2016-03-18 14:34 - 2014-09-19 11:05 - 00000000 ____D C:\Program Files (x86)\Internet Speed Checker
    2016-03-18 14:22 - 2015-02-07 20:10 - 00000000 ___HD C:\Users\Sławomir\AppData\Roaming\GoldenGate
    2016-03-15 00:32 - 2016-02-16 15:00 - 00000000 ____D C:\ProgramData\09d3df01-5443-1
    2016-03-15 00:31 - 2016-02-16 15:00 - 00000000 ____D C:\ProgramData\09d3df01-1c97-0
    2016-03-18 14:15 - 2016-03-18 14:15 - 6493696 _____ () C:\Users\Sławomir\AppData\Roaming\agent.dat
    2014-10-01 10:36 - 2014-10-01 10:36 - 0001206 _____ () C:\Users\Sławomir\AppData\Roaming\aps.scan.quick.results
    2014-10-01 10:36 - 2014-10-01 10:36 - 0002948 _____ () C:\Users\Sławomir\AppData\Roaming\aps.scan.results
    2014-09-18 20:15 - 2014-10-01 10:36 - 0000320 _____ () C:\Users\Sławomir\AppData\Roaming\aps.uninstall.scan.results
    2016-03-18 14:15 - 2016-03-18 14:15 - 0065232 _____ () C:\Users\Sławomir\AppData\Roaming\Config.xml
    2016-03-18 14:15 - 2016-03-18 14:15 - 0014256 _____ () C:\Users\Sławomir\AppData\Roaming\InstallationConfiguration.xml
    2016-03-18 14:15 - 2016-03-18 14:15 - 0127488 _____ () C:\Users\Sławomir\AppData\Roaming\Installer.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 1622056 _____ () C:\Users\Sławomir\AppData\Roaming\Lexihold.tst
    2016-03-18 14:15 - 2016-03-18 14:15 - 0018432 _____ () C:\Users\Sławomir\AppData\Roaming\Main.dat
    2016-03-18 14:15 - 2016-03-18 14:15 - 0005568 _____ () C:\Users\Sławomir\AppData\Roaming\md.xml
    2016-03-18 14:15 - 2016-03-18 14:15 - 0126464 _____ () C:\Users\Sławomir\AppData\Roaming\noah.dat
    2016-03-18 14:16 - 2016-03-18 14:16 - 0400445 _____ () C:\Users\Sławomir\AppData\Roaming\Solotom.bin
    2016-03-18 14:16 - 2016-03-18 14:16 - 0032038 _____ () C:\Users\Sławomir\AppData\Roaming\uninstall_temp.ico
    2014-11-26 19:50 - 2014-11-26 19:50 - 0000000 _____ () C:\Users\Sławomir\AppData\Roaming\wklnhst.dat
    2014-09-18 20:39 - 2014-09-18 20:39 - 0612006 _____ (ClickMeIn Limited) C:\Users\Sławomir\AppData\Local\nsa6ECC.tmp
    2014-11-26 19:38 - 2014-11-26 19:38 - 0301608 _____ (VuuPC Limited) C:\Users\Sławomir\AppData\Local\nsc60D2.tmp
    2014-09-18 21:12 - 2014-09-18 21:12 - 0627440 _____ (ClickMeIn Limited) C:\Users\Sławomir\AppData\Local\nslFBE7.tmp
    2014-09-18 20:14 - 2014-09-18 20:13 - 0612006 _____ (ClickMeIn Limited) C:\Users\Sławomir\AppData\Local\nsq1448.tmp
    2014-10-01 10:34 - 2014-10-01 10:34 - 0627504 _____ (ClickMeIn Limited) C:\Users\Sławomir\AppData\Local\nsqC580.tmp
    2014-11-26 19:39 - 2014-11-26 19:39 - 0301608 _____ (VuuPC Limited) C:\Users\Sławomir\AppData\Local\nsv278D.tmp
    EmptyTemp:

    W FRST wybierz Napraw.

    Uzyj AdwCleaner, opcja Scan i Clean/Szukaj i Usun: http://www.bleepingcomputer.com/download/adwcleaner/

    Zrob pelny skan przy pomocy Mbam i usun to co wykryje:
    http://www.bleepingcomputer.com/download/malwarebytes-anti-malware/

    Usun katalog C:\FRST.

    0